Re: Re[2]: Hijacking Apache 2 via mod_perl

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



>At least, it's  possible  to  store  descriptors  table  and
>implement  check for descriptor  in  every  perl  file/socket
>function  inside mod_perl (and mod_php  and mod_something) and 
>only allow access to std descriptors and to  descriptors open
>inside same script. The choice is between speed and security.

Right. To me, that sounds ideal. In these days of 3 GHz machines,
I don't mind a little extra checking if it makes things more
secure.

-Steve Grubb

__________________________________
Do you Yahoo!?
Yahoo! SiteBuilder - Free web site building tool. Try it!
http://webhosting.yahoo.com/ps/sb/

[Index of Archives]     [Linux Security]     [Netfilter]     [PHP]     [Yosemite News]     [Linux Kernel]

  Powered by Linux